Versio.io

CVE-2013-0169

Common vulnerabilities & exposures (CVE)

CVE databaseCVE database blogpostRelease & EoL database
 
Published at: - 04-02-2013 01:00
Last modified: - 04-02-2013 01:00
Total changes: - 171

Description

CVE-2013-0169 SSL/TLS: CBC padding timing attack (lucky-13)

Common Vulnerability Scoring System (CVSS)

AV:N/AC:H/Au:N/C:P/I:P/A:P
High
Attack complexity
Network
Attack vector
Low
Availability
Low
Confidentiality
Low
Integrity
-
Privileges required
-
Scope
-
User interaction
5.1
Base score
Exploitability score
Impact score
 

Verification logic

OR
AND
product=java-1.6.0-openjdk-1 AND versionEndExcluding=1.6.0.0-1.35.1.11.8.el5_9
vendor=Red Hat Enterprise Linux AND product=enterprise_linux AND version=5
AND
product=java-1.7.0-openjdk-1 AND versionEndExcluding=1.7.0.9-2.3.7.1.el5_9
vendor=Red Hat Enterprise Linux AND product=enterprise_linux AND version=5
AND
product=openssl-0 AND versionEndExcluding=0.9.8e-26.el5_9.1
vendor=Red Hat Enterprise Linux AND product=enterprise_linux AND version=5
AND
product=java-1.6.0-openjdk-1 AND versionEndExcluding=1.6.0.0-1.56.1.11.8.el6_3
vendor=Red Hat Enterprise Linux AND product=enterprise_linux AND version=6
AND
product=java-1.7.0-openjdk-1 AND versionEndExcluding=1.7.0.9-2.3.7.1.el6_3
vendor=Red Hat Enterprise Linux AND product=enterprise_linux AND version=6
AND
product=openssl-0 AND versionEndExcluding=1.0.0-27.el6_4.2
vendor=Red Hat Enterprise Linux AND product=enterprise_linux AND version=6
AND
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=5.2.0
AND
product=openssl
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=6.1
AND
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_web_platform AND version=5.2.0
AND
product=openssl
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_web_server AND version=2.0
AND
product=java-1.6.0-ibm-1 AND versionEndExcluding=1.6.0.14.0-1jpp.1.el5_9
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=5.4
AND
product=java-1.6.0-ibm-1 AND versionEndExcluding=1.6.0.14.0-1jpp.1.el5_9
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=5.5
AND
product=openshift4/ose-kube-rbac-proxy AND versionEndExcluding=v4.6.0-202010061132.p0
vendor=Red Hat Enterprise Linux AND product=openshift AND version=4.6
AND
product=rhev-hypervisor6-0 AND versionEndExcluding=6.4-20130306.2.el6_4
vendor=Red Hat Enterprise Linux AND product=enterprise_linux AND version=6
AND
product=spice-client-msi-0 AND versionEndExcluding=3.3-12
vendor=Red Hat Enterprise Linux AND product=rhev_manager AND version=3
AND
product=java-1.6.0-sun-1 AND versionEndExcluding=1.6.0.41-1jpp.1.el5_9
vendor=Red Hat Enterprise Linux AND product=rhel_extras AND version=5
AND
product=java-1.7.0-oracle-1 AND versionEndExcluding=1.7.0.15-1jpp.1.el5_9
vendor=Red Hat Enterprise Linux AND product=rhel_extras AND version=5
AND
product=java-1.7.0-ibm-1 AND versionEndExcluding=1.7.0.4.2-1jpp.1.el5_9
vendor=Red Hat Enterprise Linux AND product=rhel_extras AND version=5
AND
product=java-1.6.0-ibm-1 AND versionEndExcluding=1.6.0.13.2-1jpp.1.el5_9
vendor=Red Hat Enterprise Linux AND product=rhel_extras AND version=5
AND
product=java-1.5.0-ibm-1 AND versionEndExcluding=1.5.0.16.2-1jpp.1.el5_9
vendor=Red Hat Enterprise Linux AND product=rhel_extras AND version=5
AND
product=java-1.6.0-sun-1 AND versionEndExcluding=1.6.0.41-1jpp.1.el6_3
vendor=Red Hat Enterprise Linux AND product=rhel_extras AND version=6
AND
product=java-1.7.0-oracle-1 AND versionEndExcluding=1.7.0.15-1jpp.1.el6_3
vendor=Red Hat Enterprise Linux AND product=rhel_extras AND version=6
AND
product=java-1.7.0-ibm-1 AND versionEndExcluding=1.7.0.4.2-1jpp.1.el6_4
vendor=Red Hat Enterprise Linux AND product=rhel_extras AND version=6
AND
product=java-1.6.0-ibm-1 AND versionEndExcluding=1.6.0.13.2-1jpp.1.el6_4
vendor=Red Hat Enterprise Linux AND product=rhel_extras AND version=6
AND
product=java-1.5.0-ibm-1 AND versionEndExcluding=1.5.0.16.2-1jpp.1.el6_4
vendor=Red Hat Enterprise Linux AND product=rhel_extras AND version=6
AND
product=openssl097a AND version=
vendor=Red Hat Enterprise Linux AND product=enterprise_linux AND version=5
AND
product=openssl098e AND version=
vendor=Red Hat Enterprise Linux AND product=enterprise_linux AND version=6
AND
product=eap-5 AND version=
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_web_server AND version=1
AND
product=openssl AND version=
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_web_server AND version=1
AND
product=haproxy AND version=
vendor=Red Hat Enterprise Linux AND product=openshift AND version=3.11
 

Reference

 


Keywords

REDHAT

 

CVE-2013-0169

 

CVE

 

Common vulnerabilities & exposures

 

CVSS

 

Common vulnerability scoring system

 

Security

 

Vulnerabilities

 

Exposures

 

We use cookies to ensure that we give you the best experience on our website. Read privacy policies for more information.